CVE-2025-59367

CRITICAL

ASUS DSL-AC51, DSL-N16, and DSL-AC750 Firmware < 1.1.2.3_1010 - Unauthenticated Authentication Bypass

Title source: llm
STIX 2.1

Description

An authentication bypass vulnerability has been identified in certain DSL series routers, may allow remote attackers to gain unauthorized access into the affected system. Refer to the 'Security Update for DSL Series Router' section on the ASUS Security Advisory for more information.

References (1)

Core 1
Core References
Vendor Advisory vendor-advisory
https://www.asus.com/security-advisory

Scores

CVSS v3 9.8
EPSS 0.0081
EPSS Percentile 52.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-306 CWE-288
Status published
Products (3)
asus/dsl-ac51_firmware < 1.1.2.3_1010
asus/dsl-ac750_firmware < 1.1.2.3_1010
asus/dsl-n16_firmware < 1.1.2.3_1010
Published Nov 13, 2025
Tracked Since Feb 18, 2026